CVE-2026-98130
- EPSS 0.52%
- Veröffentlicht 25.09.2026 10:36:10
- Zuletzt bearbeitet 03.10.2026 11:18:34
In the Linux kernel, the following vulnerability has been resolved: sctp: fix a TOCTOU race in SCTP_CMD_TIMER_START The SCTP_CMD_TIMER_START handler checks timer_pending() before calling timer_reduce(). The timer can expire and detach between these...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:09
- Zuletzt bearbeitet 03.10.2026 11:18:34
In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix NULL pointer dereference in mpi3mr_sas_port_add() sas_port_alloc_num() can return NULL on memory allocation failure. The return value is passed directly to sas_po...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:09
- Zuletzt bearbeitet 03.10.2026 11:18:34
In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix target device refcount leak in mpi3mr_sas_port_add() mpi3mr_get_tgtdev_by_addr() increments the target device kref when it returns a device. If a subsequent error...
- EPSS 0.18%
- Veröffentlicht 25.09.2026 10:36:08
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: smb/client: validate new EOF for insert range smb3_insert_range() does not check if the new file size (i_size + len) is valid. This allows FALLOC_FL_INSERT_RANGE to bypass RLIMIT_F...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:07
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: smb/client: validate new EOF for zero range When FALLOC_FL_ZERO_RANGE is used without FALLOC_FL_KEEP_SIZE, smb3_zero_range() may extend EOF without checking RLIMIT_FSIZE, allowing ...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:36:07
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: smb/client: fix stale page cache in insert/collapse range smb3_insert_range() and smb3_collapse_range() use truncate_pagecache_range() to invalidate the affected page cache. Howeve...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:36:06
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: smb/client: invalidate fscache for fallocate range operations smb3_zero_range(), smb3_punch_hole(), smb3_insert_range(), and smb3_collapse_range() modify file contents through serv...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:05
- Zuletzt bearbeitet 03.10.2026 11:18:34
In the Linux kernel, the following vulnerability has been resolved: sctp: fix soft lockup from unpadded ASCONF-ACK parameter iteration sctp_verify_asconf() walks ASCONF-ACK parameters with sctp_walk_params(), which advances by SCTP_PAD4(length), wh...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:04
- Zuletzt bearbeitet 03.10.2026 11:18:33
In the Linux kernel, the following vulnerability has been resolved: watchdog: msc313e: Fix NULL pointer dereference in PM callbacks msc313e_wdt_probe() doesn't set the driver data for the platform device. As a result, dev_get_drvdata() in msc313e_w...
CVE-2026-98116
- EPSS 0.13%
- Veröffentlicht 25.09.2026 10:36:01
- Zuletzt bearbeitet 03.10.2026 11:18:33
In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Serialize PCM mmap with buffer reallocation to fix page UAF snd_pcm_hw_params() and snd_pcm_hw_free() guard buffer reallocation with an mmap_count check performed under ...